Skip to content

CCPA / CPRANIS2 crosswalk

A control-by-control mapping between California Consumer Privacy Act (as amended by CPRA) and NIS2 Directive (EU 2022/2555). 2 mappings.

CCPA / CPRANIS2RelationshipNotes
§1798.100
Consumers' right to know and notice at collection
Art. 21(2)(a)
Risk analysis and information system security policies
RelatedCurated
Governance & security policy
§1798.150
Duty to implement reasonable security
Art. 21(2)(a)
Risk analysis and information system security policies
RelatedCurated
Risk assessment & management

Mappings marked “Official” derive from standards-body informative references; “Curated” mappings are authored by Cyber Compliance and provided for guidance only.